US2014258734A1PendingUtilityA1

Data security method and electronic device implementing the same

Assignee: SAMSUNG ELECTRONICS CO LTDPriority: Mar 8, 2013Filed: Feb 27, 2014Published: Sep 11, 2014
Est. expiryMar 8, 2033(~6.6 yrs left)· nominal 20-yr term from priority
Inventors:Jungyoon Kim
G06F 21/6209G06F 2221/2107G06F 21/72G06F 21/60G06F 21/1011
25
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A method and an apparatus that may safely secure data in an electronic device including a computing resource, that is, software (for example, an operating system) and hardware (for example, a memory and a Central Processing Unit (CPU)) for operating the electronic device are provided. The method includes receiving a request for an application key from a data generation application or a proxy application that executes encryption of data in place of the data generation application, generating an application key using an application Identification (ID) corresponding to the data generation application and a security key stored in a secure area of the electronic device, in response to the request, and encrypting data using the generated application key.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A method of operating an electronic device, the method comprising:
 receiving a request for an application key from a data generation application;   generating the application key using an application Identification (ID) corresponding to the data generation application and a security key stored in a secure area of the electronic device, in response to the request; and   encrypting data using the generated application key.   
     
     
         2 . The method of  claim 1 , wherein the generating of the application key comprises:
 encrypting the security key, and generating the application key using the encrypted security key and the application ID, in response to the request.   
     
     
         3 . The method of  claim 1 , wherein the generating of the application key comprises:
 calculating the application ID corresponding to the data generation application, in response to the request.   
     
     
         4 . The method of  claim 1 , wherein the generating of the application key comprises:
 generating the application key in the secure area.   
     
     
         5 . The method of  claim 1 , wherein the encrypting of the data comprises:
 encrypting the data in the secure area.   
     
     
         6 . The method of  claim 1 , wherein the receiving of the request for the application key comprises:
 receiving the request for the application key from a proxy application that executes encryption of data in place of the data generation application.   
     
     
         7 . A method of operating an electronic device, the method comprising:
 receiving a request for an encryption key or a decryption key from an application;   generating the encryption key or the decryption key using a security key stored in a secure area of the electronic device, in response to the request; and   transmitting the generated encryption key or decryption key to the application.   
     
     
         8 . The method of  claim 7 , wherein the generating of the encryption key or the decryption key comprises:
 generating the encryption key or the decryption key using the security key and an application Identification (ID) corresponding to a data generation application.   
     
     
         9 . The method of  claim 8 , wherein the generating of the encryption key or the decryption key comprises:
 encrypting the security key and generating an application key using the encrypted security key and the application ID, in response to the request.   
     
     
         10 . An electronic device comprising:
 a user input unit;   a memory comprising a normal area and a secure area; and   a processor configured to access the normal area to execute a program of the normal area, to access the secure area to execute a program of the secure area, and to connect the user input unit and the memory,   wherein the secure area comprises a key generation module configured to receive a request for an application key from an application, to generate the application key using an application Identification (ID) and a security key, in response to the request, and to transfer the generated application key to the application, and   wherein the security key is accessible in the secure area and inaccessible in the normal area.   
     
     
         11 . The electronic device of  claim 10 , wherein the secure area comprises an encryption module configured to encrypt the security key, and to transfer the encrypted security key to the key generation module, in response to the request. 
     
     
         12 . The electronic device of  claim 10 , wherein the secure area or the normal area comprises:
 a calculation module configured to calculate an application ID corresponding to a data generation application, in response to the request.   
     
     
         13 . The electronic device of  claim 10 , wherein the application corresponds to one of the components of the normal area or the secure area, and corresponds to a data generation application or a proxy application that executes encryption and decryption of data in place of the data generation application. 
     
     
         14 . The electronic device of  claim 10 , wherein the user input unit comprises a touch screen. 
     
     
         15 . An electronic device, comprising:
 a user input unit;   a memory comprising a normal area and a secure area; and   a processor configured to access the normal area to execute a program of the normal area, to access the secure area to execute a program of the secure area, and to connect the user input unit and the memory,   wherein the secure area comprises a key generation module configured to receive a request for an encryption key or a decryption key from an application, to generate the encryption key or the decryption key using a security key in response to the request, and to transfer the generated encryption key or decryption key to the application, and   wherein the security key is accessible in the secure area and inaccessible in the normal area.   
     
     
         16 . The electronic device of  claim 15 , wherein the key generation module is further configured to generate the encryption key or the decryption key using the security key and an application ID corresponding to a data generation application. 
     
     
         17 . The electronic device of  claim 15 , wherein the secure area comprises:
 an encryption module configured to encrypt the security key, and to transfer the encrypted security key to the key generation module, in response to the request.   
     
     
         18 . The electronic device of  claim 15 , wherein the application corresponds to one of the components of the normal area or the secure area, and corresponds to a data generation application or a proxy application that executes encryption and decryption of data in place of the data generation application. 
     
     
         19 . The electronic device of  claim 15 , wherein the user input unit comprises a touch screen. 
     
     
         20 . A non-transitory computer-readable storage medium configured to store a computer program of instructions configured to be readable by at least one processor for instructing the at least one processor to execute a computer process for performing the method of  claim 1 .

Join the waitlist — get patent alerts

Track US2014258734A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.